Free Malware Removal Forum

Welcome to MalwareRemoval.com,What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Whatever repairs we make, are for fixing your computer problems only and by no means should be used on another computer. To make cleaning this machine easier:-

Continue to respond to this thread until I give you the All Clean!

Please DO NOT uninstall/install any programs unless asked to. It is more difficult when files/programs appear or disappear from the logs.

Please do not run any scans other than those requested and do not post any logs/reports unless specifically requested to do so.

Please follow all instructions in the order posted.

If you have any questions or do not understand instructions, please ask before continuing.

Please reply to this thread. Do not start a new topic.

1. Make an uninstall list using HijackThisTo access the Uninstall Manager you would do the following:

Start HijackThis

Click on the Config button

Click on the Misc Tools button

Click on the Open Uninstall Manager button.

Click on the Save list... button and specify where you would like to save this file. When you press Save button a notepad will open with the contents of that file. Save the file to your desktop.

Please post this log on your next reply.

2. Disable Spybot's TeaTimer. This is a two step process.

Spybot S&D's tea timer normally provides real-time protection from spyware, however it may interfere with what we need to do. We will disable it until the machine is clean when it can be re-enabled.

First step:

Right-click the Spybot Icon in the System Tray (looks like a blue/white calendar with a padlock symbol)

If you have the new version 1.5, Click once on Resident Protection, then Right click the Spybot icon again and make sure Resident Protection is now Unchecked. The Spybot icon in the System tray should now be now colorless.

Computer Name: MATTOX-07WAJDD3Event Code: 1003Message: Your computer was not able to renew its address from the network (from theDHCP Server) for the Network Card with network address 000795A7D796. The followingerror occurred: The semaphore timeout period has expired..Your computer will continue to try and obtain an address on its own fromthe network address (DHCP) server.

Computer Name: MATTOX-07WAJDD3Event Code: 36Message: The time service has not been able to synchronize the system timefor 49152 seconds because none of the time providers has been able toprovide a usable time stamp. The system clock is unsynchronized.

Computer Name: MATTOX-07WAJDD3Event Code: 11Message: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Computer Name: MATTOX-07WAJDD3Event Code: 11Message: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Computer Name: MATTOX-07WAJDD3Event Code: 11Message: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Computer Name: MATTOX-07WAJDD3Event Code: 11Message: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Computer Name: MATTOX-07WAJDD3Event Code: 11Message: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

Anti-virus programs take up an enormous amount of your computer's resources when they are actively scanning your computer. Having two anti-virus programs running at the same time can cause your computer to run very slow, become unstable and even, in rare cases, crash. Please remove one of them NOW.

This next step is your choice. The below items I am getting you to fix with HJT are for programs that do not need to start up when you turn your computer on. Doing the below step WILL NOT UNINSTALL these programs ONLY stop them from running at startup. All will be available when you need them. The bonus is it will make your startup time a bit shorter

Open Hijack This and select Do a System Scan Only place a check next to the below lines if still present

McAfee SiteAdvisor is also said to slow things down, you could try uninstalling to see if it makes a difference. Teatimer can also be a cause.

I would recommend uninstalling Coupon Printer for Windows if you do not use it and it is never advisable to use a registry cleaner.

Most reg cleaners aren't "bad" as such, but they aren't perfect and even the best have been known to cause problems.The point we are trying to make is that the risk of using one far outweighs any benefit.If it does work perfectly you will not see any differenceIf it doesn't work properly you may end up with an expensive doorstop.

Double-click ATF-Cleaner.exe to run the program. Under Main choose: Select AllClick the Empty Selected button. (If you use FireFox or the Opera browser,To keep saved passwords, click No at the prompt.)Click Exit on the Main menu to close the program.

Note: If using Mozilla Firefox you will need to download esetsmartinstaller_enu.exe when prompted then double click on it to install.All of the below instructions are compatible with either Internet Explorer or Mozilla FireFox.

Select the option YES, I accept the Terms of Use then click on:

When prompted allow the Add-On/Active X to install.

Make sure that the option Remove found threats is NOT checked, and the option Scan archives is checked.

Now click on Advanced Settings and select the following:

Scan for potentially unwanted applications

Scan for potentially unsafe applications

Enable Anti-Stealth Technology

Now click on:

The virus signature database... will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.

When completed the Online Scan will begin automatically.

Do not touch either the Mouse or keyboard during the scan otherwise it may stall.

When completed select Uninstall application on close if you so wish, make sure you copy the logfile first!

Now click on:

Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.

Copy and paste that log as a reply to this topic.

Note: Do not forget to re-enable your Anti-Virus application after running the above scan!

Who is online

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.